Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
university of cambridge exim 3.35 vulnerabilities and exploits
(subscribe to this query)
725
VMScore
CVE-2002-1381
Format string vulnerability in daemon.c for Exim 4.x up to and including 4.10, and 3.x up to and including 3.36, allows exim administrative users to execute arbitrary code by modifying the pid_file_path value.
University Of Cambridge Exim 3.35
University Of Cambridge Exim 3.36
University Of Cambridge Exim 4.10
1 EDB exploit
755
VMScore
CVE-2004-0399
Stack-based buffer overflow in Exim 3.35, and other versions prior to 4, when the sender_verify option is true, allows remote malicious users to cause a denial of service and possibly execute arbitrary code during sender verification.
University Of Cambridge Exim 3.35
University Of Cambridge Exim
1 EDB exploit
668
VMScore
CVE-2003-0743
Heap-based buffer overflow in smtp_in.c for Exim 3 (exim3) prior to 3.36 and Exim 4 (exim4) prior to 4.21 may allow remote malicious users to execute arbitrary code via an invalid (1) HELO or (2) EHLO argument with a large number of spaces followed by a NULL character and a newli...
University Of Cambridge Exim 3.15
University Of Cambridge Exim 3.16
University Of Cambridge Exim 3.3.1
University Of Cambridge Exim 3.3.2
University Of Cambridge Exim 3.36
University Of Cambridge Exim 4.10
University Of Cambridge Exim 3.11
University Of Cambridge Exim 3.12
University Of Cambridge Exim 3.19
University Of Cambridge Exim 3.20
University Of Cambridge Exim 3.32
University Of Cambridge Exim 3.33
University Of Cambridge Exim 3.0
University Of Cambridge Exim 3.17
University Of Cambridge Exim 3.18
University Of Cambridge Exim 3.30
University Of Cambridge Exim 3.31
University Of Cambridge Exim 4.20
University Of Cambridge Exim 3.13
University Of Cambridge Exim 3.14
University Of Cambridge Exim 3.21
University Of Cambridge Exim 3.22
730
VMScore
CVE-2005-0021
Multiple buffer overflows in Exim prior to 4.43 may allow malicious users to execute arbitrary code via (1) an IPv6 address with more than 8 components, as demonstrated using the -be command line option, which triggers an overflow in the host_aton function, or (2) the -bh command...
University Of Cambridge Exim
University Of Cambridge Exim 4.41
University Of Cambridge Exim 4.42
2 EDB exploits
668
VMScore
CVE-2004-0400
Stack-based buffer overflow in Exim 4 prior to 4.33, when the headers_check_syntax option is enabled, allows remote malicious users to cause a denial of service and possibly execute arbitrary code during the header check.
University Of Cambridge Exim
971
VMScore
CVE-2010-4344
Heap-based buffer overflow in the string_vformat function in string.c in Exim prior to 4.70 allows remote malicious users to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted headers, leading to impro...
Exim Exim 2.11
Exim Exim 4.66
Exim Exim 4.10
Exim Exim 3.16
Exim Exim 3.21
Exim Exim 3.01
Exim Exim 3.31
Exim Exim 4.24
Exim Exim 3.33
Exim Exim 3.30
Exim Exim 4.30
Exim Exim 4.21
Exim Exim 4.03
Exim Exim 4.51
Exim Exim 4.67
Exim Exim 4.63
Exim Exim 4.00
Exim Exim 4.43
Exim Exim 4.22
Exim Exim 3.10
Exim Exim 4.40
Exim Exim 4.52
2 EDB exploits
2 Nmap scripts
2 Github repositories
805
VMScore
CVE-2010-4345
Exim 4.72 and previous versions allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration file with a directive that contains arbitrary commands, as demonstrated by the spool_directory directive.
Exim Exim 2.11
Exim Exim 4.70
Exim Exim 4.69
Exim Exim 4.66
Exim Exim 4.10
Exim Exim 3.16
Exim Exim 3.21
Exim Exim 3.01
Exim Exim 3.31
Exim Exim 4.24
Exim Exim 3.33
Exim Exim 3.30
Exim Exim
Exim Exim 4.30
Exim Exim 4.21
Exim Exim 4.03
Exim Exim 4.51
Exim Exim 4.71
Exim Exim 4.67
Exim Exim 4.63
Exim Exim 4.00
Exim Exim 4.43
1 EDB exploit
2 Metasploit modules
2 Nmap scripts
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started